International Conference on Information Technology: Coding and Computing (ITCC'04) Volume 2
Access Policy Specification for Web Applications
Las Vegas, Nevada
April 05-April 07
ISBN: 0-7695-2108-8
We show how access to Web resources may be controlled by using an access control program that implements a reactive agent. The agent reasons about the events, actions and a history (of events and actions) that relate to a user in order to make decisions about permitting the user to access information that is held on remote servers. The access control program is based on an abstract access control model that is formally specified as a clause form theory. Access policies may be efficiently implemented in a variety of practical languages.